NTFS permissions

G

Guest

I have a server that was upgraded to win2k. When it was upgraded some of the
permissions for certain users must have got fouled up. For example I'm using
diskkeeper for defragentation. It is able to scan 95% of the users folders.
The other 5% will not scan. the evet ID is 26. It says The most common reason
Diskeeper cannot open files is because the permissions on the files are set
to deny the SYSTEM logon full control and gives me the name of the users. I
have tried to set the permission for the files using CACLS * /e /t /c /g
''YOUR_DOMAIN\Domain Admins'':F Administrators:F System:F at the root level.
This has no effect. This is also hindering the antivirus product (Norton
Corp). It cannot scan the user files on the server. What I have been able to
figure out is that when the folders are created under the user only they have
ownership and I cannot give admin full control to the folders through command
prompt. I can however do this through explorer but I don not want to go that
way for it would take me months to complete it. Is there any way to get
around this?
 
J

Jerold Schulman

I have a server that was upgraded to win2k. When it was upgraded some of the
permissions for certain users must have got fouled up. For example I'm using
diskkeeper for defragentation. It is able to scan 95% of the users folders.
The other 5% will not scan. the evet ID is 26. It says The most common reason
Diskeeper cannot open files is because the permissions on the files are set
to deny the SYSTEM logon full control and gives me the name of the users. I
have tried to set the permission for the files using CACLS * /e /t /c /g
''YOUR_DOMAIN\Domain Admins'':F Administrators:F System:F at the root level.
This has no effect. This is also hindering the antivirus product (Norton
Corp). It cannot scan the user files on the server. What I have been able to
figure out is that when the folders are created under the user only they have
ownership and I cannot give admin full control to the folders through command
prompt. I can however do this through explorer but I don not want to go that
way for it would take me months to complete it. Is there any way to get
around this?


Since the user has ownership, why not have a logon script set the system and admin to file on the user folders and files.


Jerold Schulman
Windows Server MVP
JSI, Inc.
http://www.jsiinc.com
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads


Top